Neo4j Logo

Trust Center

background-image
Start your security review
View & download sensitive information
Ask for information
ControlK

Overview

Welcome to Neo4j's Trust Center. Our commitment to data privacy and security is embedded in every part of our business. Use this Trust Center to learn about our security posture and request access to our security documentation.

Compliance Documents

Featured Documents

COMPLIANCE DOCUMENTSInformation Security Whitepaper
Knowledge Base (FAQ)
  • How are vulnerabilities, such as CVEs, managed and responded to?
  • Does Neo4j have a security program in place?
  • Does Neo4j have a Responsible Disclosure Policy for security related issues?
  • How is data hosted in Neo4j Aura protected?
  • What is HIPAA and is Neo4j's AuraDB HIPAA certified?
View more

Trust Center Updates

Information Security Whitepaper

Copy link
General

Neo4j has issued a 2025 Aura Virtual Dedicated Cloud Security Whitepaper. This white paper provides detailed insight into Neo4j Aura’s single-tenancy architecture. It focuses on security controls, features and an overview of our comprehensive approach to information security.

Neo4j has issued a 2025 Information Security Whitepaper. This whitepaper provides an introduction to the Neo4j information security program. It describes how our security program protects Neo4j as a company, and the data entrusted to us.

Neo4j Aura Console Service

Incidents

During a recent routine internal review of Neo4j AuraDB, the engineering team discovered that some configuration changes had affected the capture of Activity Feed logging events within the Neo4j Aura Console Service. This occurred between June 1 and July 1, 2026.

As background: on June 1, 2026, an internal and planned Neo4j configuration change caused a small number of Activity Feed logging events to be dropped. On June 23, 2026, a further change increased this amount, but the issue was resolved on July 1, 2026, following a service update.

While some Activity Feed logging data generated during this timeframe is unfortunately unrecoverable, there is no evidence that any data has been disclosed or accessed by any unauthorized third party, nor that any Neo4j system has been compromised. Furthermore, there is no evidence that this issue affected any Database Security log data, as these are captured using a different mechanism. Please also note that no action is required by users as a result of this issue.

Neo4j takes these issues seriously, and we are continually reviewing our monitoring and alerting processes so as to detect issues early and address them promptly. While we apologize for any inconvenience this issue may have caused, please be assured that protecting your data is our top priority.

If you have any additional questions, please contact your Neo4j representative.

If you need help using this Trust Center, please contact us.
Contact support
If you think you may have discovered a vulnerability, please send us a note.
Report issue

Subprocessors

Built onSafeBase by Drata Logo